TOTPBOX is a dedicated two-factor authentication manager that enforces a strict security boundary: it stores TOTP secrets and recovery codes, never passwords. All data is encrypted with AES-256-GCM on-device, and master keys never leave your device.
Unlike password managers that bolt on TOTP as an afterthought, TOTPBOX focuses exclusively on authentication factors. The Auth Health Dashboard visualizes your security posture across all accounts. Passkey migration guidance shows which accounts are ready to upgrade from legacy TOTP to phishing-resistant, hardware-bound credentials (FIDO2/WebAuthn).
Key features:
Chrome browser extension with TOTP auto-fill
AES-256-GCM local encryption
Passkey awareness and migration guidance
Auth Health Dashboard
Recovery Code Vault
TOTP and HOTP support
Optional encrypted cloud sync (Pro)
Team vaults and org dashboards (Team)
Pricing: Free (unlimited accounts, local only), Pro ($4/mo, cloud sync), Team ($12/user/mo, shared vaults).